DescriptionHuzaifa S. Sidhpurwala
2012-09-14 02:44:06 UTC
It was discovered that the spice-gtk setuid helper application, spice-client-glib-usb-acl-helper, did not clear the environment variables read by the libraries it uses. A local attacker could possibly use this flaw to escalate their privileges by setting specific environment variables before running the helper application.
This flaw is similar to CVE-2012-3524
Comment 2Huzaifa S. Sidhpurwala
2012-09-14 02:54:44 UTC
Created spice-gtk tracking bugs for this issue
Affects: fedora-all [bug 857228]
Comment 3Huzaifa S. Sidhpurwala
2012-09-14 02:58:56 UTC
Acknowledgement:
Red Hat would like to thank Sebastian Krahmer of the SUSE Security Team for
reporting this issue.
Comment 4Huzaifa S. Sidhpurwala
2012-09-14 03:01:01 UTC